CVE Feed

    Dashboard / CVE / CVE-2022-34460

    CVE-2022-34460

    Prior Dell BIOS versions contain an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

    Published:Jan 18, 2023
    Last Modified:Apr 3, 2025
    EPS:Jan 18, 2023
    EPSS Score:0.0002
    CVSS Score:7.5

    Affected Products

    Vendor
    Dell
    Product
    G5 Se 5505
    Vendor
    Dell
    Product
    G5 Se 5505 Firmware
    Vendor
    Dell
    Product
    Inspiron 27 7775
    Vendor
    Dell
    Product
    Inspiron 27 7775 Firmware
    Vendor
    Dell
    Product
    Inspiron 3180
    Vendor
    Dell
    Product
    Inspiron 3180 Firmware
    Vendor
    Dell
    Product
    Inspiron 3185
    Vendor
    Dell
    Product
    Inspiron 3185 Firmware
    Vendor
    Dell
    Product
    Inspiron 3195 2-in-1
    Vendor
    Dell
    Product
    Inspiron 3195 2-in-1 Firmware
    Vendor
    Dell
    Product
    Inspiron 3275
    Vendor
    Dell
    Product
    Inspiron 3275 Firmware
    Vendor
    Dell
    Product
    Inspiron 3475
    Vendor
    Dell
    Product
    Inspiron 3475 Firmware
    Vendor
    Dell
    Product
    Inspiron 3505
    Vendor
    Dell
    Product
    Inspiron 3505 Firmware
    Vendor
    Dell
    Product
    Inspiron 3515
    Vendor
    Dell
    Product
    Inspiron 3515 Firmware
    Vendor
    Dell
    Product
    Inspiron 3585
    Vendor
    Dell
    Product
    Inspiron 3585 Firmware
    Vendor
    Dell
    Product
    Inspiron 3595
    Vendor
    Dell
    Product
    Inspiron 3595 Firmware
    Vendor
    Dell
    Product
    Inspiron 3785
    Vendor
    Dell
    Product
    Inspiron 3785 Firmware
    Vendor
    Dell
    Product
    Inspiron 5405
    Vendor
    Dell
    Product
    Inspiron 5405 Firmware
    Vendor
    Dell
    Product
    Inspiron 5415
    Vendor
    Dell
    Product
    Inspiron 5415 Firmware
    Vendor
    Dell
    Product
    Inspiron 5485
    Vendor
    Dell
    Product
    Inspiron 5485 2-in-1
    Vendor
    Dell
    Product
    Inspiron 5485 2-in-1 Firmware
    Vendor
    Dell
    Product
    Inspiron 5485 Firmware
    Vendor
    Dell
    Product
    Inspiron 5505
    Vendor
    Dell
    Product
    Inspiron 5505 Firmware
    Vendor
    Dell
    Product
    Inspiron 5515
    Vendor
    Dell
    Product
    Inspiron 5515 Firmware
    Vendor
    Dell
    Product
    Inspiron 5585
    Vendor
    Dell
    Product
    Inspiron 5585 Firmware
    Vendor
    Dell
    Product
    Inspiron 7375
    Vendor
    Dell
    Product
    Inspiron 7375 Firmware
    Vendor
    Dell
    Product
    Inspiron 7405 2-in-1
    Vendor
    Dell
    Product
    Inspiron 7405 2-in-1 Firmware
    Vendor
    Dell
    Product
    Inspiron 7415
    Vendor
    Dell
    Product
    Inspiron 7415 Firmware
    Vendor
    Dell
    Product
    Vostro 3405
    Vendor
    Dell
    Product
    Vostro 3405 Firmware
    Vendor
    Dell
    Product
    Vostro 3515
    Vendor
    Dell
    Product
    Vostro 3515 Firmware
    Vendor
    Dell
    Product
    Vostro 5415
    Vendor
    Dell
    Product
    Vostro 5415 Firmware
    Vendor
    Dell
    Product
    Vostro 5515
    Vendor
    Dell
    Product
    Vostro 5515 Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High